Описание
Dell Unity, version(s) 5.5 and prior, contain(s) an OS Command Injection Vulnerability in its svc_nas utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.
Уязвимые конфигурации
Конфигурация 1Версия до 5.5.1.0 (исключая)
cpe:2.3:a:dell:unity_operating_environment:*:*:*:*:*:*:*:*
EPSS
Процентиль: 9%
0.00031
Низкий
7.8 High
CVSS3
Дефекты
CWE-78
Связанные уязвимости
CVSS3: 7.8
github
6 месяцев назад
Dell Unity, version(s) 5.5 and prior, contain(s) an OS Command Injection Vulnerability in its svc_nas utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.
EPSS
Процентиль: 9%
0.00031
Низкий
7.8 High
CVSS3
Дефекты
CWE-78